VYPR
High severity7.8NVD Advisory· Published Nov 29, 2017· Updated Jun 17, 2026

CVE-2017-17052

CVE-2017-17052

Description

The mm_init function in kernel/fork.c in the Linux kernel before 4.12.10 does not clear the ->exe_file member of a new process's mm_struct, allowing a local attacker to achieve a use-after-free or possibly have unspecified other impact by running a specially crafted program.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Linux/Kernel2 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=4.7,<4.9.46
    • (no CPE)range: <4.12.10

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.